The (1) ltmmCaptureCtrl Class, (2) ltmmConvertCtrl Class, and (3) ltmmPlayCtrl Class ActiveX controls (ltmm15.dll 15.1.0.17 and earlier) in LEADTOOLS Multimedia Toolkit 15 allow attackers to overwrite arbitrary files via the SaveSettingsToFile method.
References
Configurations
History
21 Nov 2024, 00:44
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/29538 - Vendor Advisory | |
References | () http://www.securityfocus.com/bid/28442 - | |
References | () http://www.shinnai.altervista.org/index.php?mod=02_Forum&group=Security&argument=Remote_performed_exploits&topic=1206434746.ff.php&page=last - | |
References | () http://www.shinnai.altervista.org/xplits/TXT_lyyELAFI8pOPu2p7N6cq.html - Exploit | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/41467 - |
Information
Published : 2008-04-01 16:44
Updated : 2024-11-21 00:44
NVD link : CVE-2008-1605
Mitre link : CVE-2008-1605
CVE.ORG link : CVE-2008-1605
JSON object : View
Products Affected
leadtools
- multimedia_toolkit
CWE
CWE-20
Improper Input Validation